Vulnerabilities/

Regular Expression Denial Of Service in uri-js

Severity:
Medium

Description

Affected versions of uri-js is susceptible to a regular expression denial of service vulnerability when user input is sent to the .parse() method.

Recommendation

Update the uri-js package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
uri-js
Anything's wrong? Let us know Last updated on April 22, 2024

This issue is available in SmartScanner Professional

See Pricing